Lucene search

K
cve[email protected]CVE-2010-3702
HistoryNov 05, 2010 - 6:00 p.m.

CVE-2010-3702

2010-11-0518:00:05
CWE-476
web.nvd.nist.gov
86
cve-2010-3702
pdf parser
xpdf
poppler
cups
kdegraphics
denial of service
uninitialized pointer dereference

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.3 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.4%

The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) via unknown vectors that trigger an uninitialized pointer dereference.

Affected configurations

NVD
Node
applecupsRange1.3.11
OR
freedesktoppopplerRange0.8.70.15.1
OR
xpdfreaderxpdfRange3.01
OR
xpdfreaderxpdfMatch3.02-
OR
xpdfreaderxpdfMatch3.02pl1
OR
xpdfreaderxpdfMatch3.02pl2
OR
xpdfreaderxpdfMatch3.02pl3
OR
xpdfreaderxpdfMatch3.02pl4
Node
fedoraprojectfedoraMatch12
OR
fedoraprojectfedoraMatch13
OR
fedoraprojectfedoraMatch14
Node
opensuseopensuseMatch11.1
OR
opensuseopensuseMatch11.2
OR
opensuseopensuseMatch11.3
OR
suselinux_enterprise_serverMatch9
OR
suselinux_enterprise_serverMatch10sp3-
OR
suselinux_enterprise_serverMatch11-
OR
suselinux_enterprise_serverMatch11sp1
Node
debiandebian_linuxMatch5.0
OR
debiandebian_linuxMatch6.0
Node
redhatenterprise_linux_desktopMatch5.0
OR
redhatenterprise_linux_serverMatch5.0
OR
redhatenterprise_linux_workstationMatch5.0
Node
canonicalubuntu_linuxMatch6.06
OR
canonicalubuntu_linuxMatch8.04-
OR
canonicalubuntu_linuxMatch9.04
OR
canonicalubuntu_linuxMatch9.10
OR
canonicalubuntu_linuxMatch10.04-
OR
canonicalubuntu_linuxMatch10.10

References

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.3 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.4%